The National Institute of Standards and Technology (NIST) is requesting comments on a draft revision of Recommended Security Controls for Federal Information Systems (NIST Special Publication 800-53). Issued in February 2005, SP 800-53 is one of the key standards and guidelines developed by NIST to help federal agencies improve their security and comply with the Federal Information Security Management Act (FISMA).
The publication recommends management, operational and technical controls needed to protect the confidentiality, integrity, and availability of federal information systems. The controls cover 17 security focus areas, including risk assessment, contingency planning, access control, and incident response. The draft changes include new and enhanced controls and additional guidance on implementing security controls in external environments and responding to information system incidents.

